CVE-2017-6554: Quest Privilege Manager
High severity, CVSS 7.2. EPSS: 15.6% chance of exploitation in the next 30 days.
pmmasterd in Quest Privilege Manager before 6.0.0.061, when configured as a policy server, allows remote attackers to write to arbitrary files and consequently execute arbitrary code with root privileges via an ACT_NEWFILESENT action.
Affected products
- Quest Privilege Manager: version 6.0.0-27 only; version 6.0.0-50 only
Published 2017-04-14. Last modified 2026-06-17.